Accepted libgd2 2.3.3-1 (source) into unstable
- To: debian-devel-changes@lists.debian.org
- Subject: Accepted libgd2 2.3.3-1 (source) into unstable
- From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
- Date: Wed, 06 Jul 2022 14:49:23 +0000
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ftp-master.debian.org; s=smtpauto.fasolo; h=Date:Message-Id:Subject: Content-Transfer-Encoding:Content-Type:MIME-Version:To:Reply-To:From:Cc: Content-ID:Content-Description:In-Reply-To:References; bh=3txxNvmEyUqPWwr+DltJMbJEBnusMGXe+2VHfzQ6Kg8=; b=j4usXeUBsWgKUsT/fXg9F5wbnb TrLYtWlq9CbnFWdkGe2Zq4mJaZCRgcrQNFdjIrnYfAAuAiN35CmLj6OJPKdE+Qxnsd080LWq8z3Aj ZwMlhqD/80876f67/6qGdXigDWUzQTqF3wUYhvUEchltIYv4qfY7X1S5l3F+PTOcMuRgYw3rp5qq/ eda8UI1dfXeAsC0TcYVIOt5WSWSxSZfG38CHqva938B0L53TSDqFpHnaa44Ju8ah1VGidbEY1AJeO l2fCrn41bsv1cv1VGL6Q1AfzFed3Pm5R4M3d4FXBqYuk/s2aHa5JlugFZZQFwklmADUPKRhfmq96Q 3zWlfcKQ==;
- Mail-followup-to: debian-devel@lists.debian.org
- Message-id: <E1o96LD-000CF8-Gn@fasolo.debian.org>
- Reply-to: debian-devel@lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Wed, 06 Jul 2022 16:33:08 +0200
Source: libgd2
Architecture: source
Version: 2.3.3-1
Distribution: unstable
Urgency: medium
Maintainer: GD Team <team+gd@tracker.debian.org>
Changed-By: Ondřej Surý <ondrej@debian.org>
Closes: 981208 991912 1004572
Changes:
libgd2 (2.3.3-1) unstable; urgency=medium
.
* Require debhelper >= 10
* New upstream version 2.3.3 (Closes: #1004572)
+ CVE-2021-38115: fix read out-of-bands in reading tga header file
(Closes: #991912)
* New upstream version 2.3.1
+ CVE-2019-11038: Using uninitialized variables.
+ CVE-2019-6977: Heap-based buffer overflow.
+ CVE-2019-6978: Double-free in gdImage*Ptr().
* Enable AVIF and HEIF support
* Update symbols file for libgd3_2.3.3
* Remove libxt-dev, html2text from build dependencies (Closes: #981208)
Checksums-Sha1:
5055d99c51d6e14ba6e62ab028749b5a217730ab 2306 libgd2_2.3.3-1.dsc
a275344fb56161df6a06679bf0bf29c30930d8eb 3593182 libgd2_2.3.3.orig.tar.gz
62efe2ac2b82ec47b8dbeb401b86f4451c43c337 30960 libgd2_2.3.3-1.debian.tar.xz
0d3895039ea7040971967345a1b566b01b54625b 9285 libgd2_2.3.3-1_amd64.buildinfo
Checksums-Sha256:
040bc84712498dc85a05add2f15b4a1181143fb2e5446d93543eecae338e2339 2306 libgd2_2.3.3-1.dsc
dd3f1f0bb016edcc0b2d082e8229c822ad1d02223511997c80461481759b1ed2 3593182 libgd2_2.3.3.orig.tar.gz
09c95083e31bb9af2a79c8dc24f86e4d62748edd87941b5ac6e228c08208a94b 30960 libgd2_2.3.3-1.debian.tar.xz
a53e5fb00e31c30ff963ac72ebcecb3029ccbc2e7502886c9b0d0b5065d8975d 9285 libgd2_2.3.3-1_amd64.buildinfo
Files:
6d9fb96d7a49b575adf9a34ff0bd21cd 2306 graphics optional libgd2_2.3.3-1.dsc
bf6d41ecb3148a6238a3058eb3d6224a 3593182 graphics optional libgd2_2.3.3.orig.tar.gz
c4c3151c886230ca2df71a784c563a95 30960 graphics optional libgd2_2.3.3-1.debian.tar.xz
aa5c9c546be2c8074213e8aade811001 9285 graphics optional libgd2_2.3.3-1_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----
iQKTBAEBCgB9FiEEw2Gx4wKVQ+vGJel9g3Kkd++uWcIFAmLFnZNfFIAAAAAALgAo
aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEMz
NjFCMUUzMDI5NTQzRUJDNjI1RTk3RDgzNzJBNDc3RUZBRTU5QzIACgkQg3Kkd++u
WcL9yxAAnly0XWTYwH2lU9jf8eGL/WAMfBPbQGTjqEVng7kjwvLe2XSrEezNOJg0
2qSHoHy5UQOHUbotF/VEMQboWXS9s4ywc01saX2pslobTDv3p6vMxXannWeLxzLF
H7VyH0ELgNw6uEUWflrmSG7AvFbUV4+Ai+4vLhM5FpEFQNHiLIFhVWbOHN0c2epd
hepDAGN2kc905zZj7+3U3JetKKzUxi3mTV1Ap7d0nfwXBSW7rXOgGL4WNjvyM0w7
S1AYpKOMBUyfZ0Xy0dfMnGMegeqDkPJk0D/CiKj3H9SdMtnSIi78qlKeNmuQYZmE
kw0pUxS/tPPzB3FwsU473u0gulN/P3giPJZ16yJDP/F3Nx469KZ6cSN4xvZDpvCj
jJVPtoTzyQ5Vt32bZrExM8w79iYR0i4kEQvOMXsWYOZpbb5RWtp9xbWjPcWBYHTf
D+LG5EdCgodEBaiLl2sqkHiB2xtSvpacgT1gEppH/BBh7c5kiadnHuQJhC5JsB7F
XZgtrMPHHbdte1KB4e6huXmZn4HPzTV+jaEgiVFupcps6Ddfjf/CW8pSoKaqoEZ1
hPB4iwrNqL+WwqUKvucKm8xY9ddJfWThp3wcKwibwREn/iCYGyF9ubIK98Ut9R6S
qmaVs2mDCxZi+TbbFGbhqkCSdyXNuVJL9kc9FYi+YrAwGfXdsEk=
=dYDH
-----END PGP SIGNATURE-----